4.6
CVSSv2

CVE-2015-0601

Published: 07/02/2015 Updated: 08/09/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.9 | Exploitability Score: 3.1
VMScore: 409
Vector: AV:L/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

Cisco Unified IP 9900 phones with firmware 9.4(.1) and previous versions allow local users to cause a denial of service (device reload) via crafted commands, aka Bug ID CSCup92790.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified_ip_phones_9971_firmware

cisco unified_ip_phones_9951_firmware

Vendor Advisories

A vulnerability in the Cisco Unified IP Phone 9900 Series could allow an authenticated, local attacker to cause a denial of service (DoS) condition on the affected device The vulnerability is due to insufficient input validation An attacker could exploit this vulnerability by sending crafted commands to the affected device An exploit could allo ...